First time poster, I've scowered the web and these forums for anything useful about TPM and using it like PlatformLock for pre-boot authentication.
I've taken DCS.zip and extracted its contents over my 1.23-hotfix-2 recovery boot zip and copied it over my \EFI\VeraCrypt folder. This allowed me to get the extra menu when you press [f2] after you type your password.
I press C, and then press T, then I press U to update the TPM password then it goes on to [0x137] PCRs mask: but no matter what I enter at this point it just errors out. Says,
TPM not configured
Device Error(12),line 1211
If I just Print PCR's it will spew some text, serial.. but whenever I try to follow the basic instructions it just fails. Does anyone have any advice?
I've cleared TPM in Windows, disabled auto-provisioning. Then when I go to provision it, it just says ready... It no longer allows me to create the password so I check registry for the key an note it down. This is the key that I'm entering in to the pre-boot configuration. It looks configured according to Windows and BIOS, its not being detected by VeraCrypt.
The TPM 1.2 is configured with latest build of Windows 10 64-bit. Its the latest version they make for my Dell laptop.
Unfortunately this pdf is no longer accurate. I use Windows 10 1809 and Windows has since several versions ago removed the ability to set a pin. Instead it generates a password for you that can be extracted from the registry. http://ccmexec.com/2016/11/mbam-tpm-password-hash-and-windows-10-1607/
Only problem is this doesn't work for Veracrypt. I only get CRC Error, line 382
If anyone has good instructions for getting TPM to work on later versions of Windows 10 I would gladly donate a reasonable amount. I have Dell, Asus, and Lenovo laptops. I can clear TPM no problem, but after the restart when I click "Prepare TPM" it just sets itself back up and tells me its ready. I can take that password and try setting it up with the F2 option and gives me the above error.
Last edit: Joe 2018-12-15
If you would like to refer to this comment somewhere else in this project, copy and paste the following link:
Hi,
First time poster, I've scowered the web and these forums for anything useful about TPM and using it like PlatformLock for pre-boot authentication.
I've taken DCS.zip and extracted its contents over my 1.23-hotfix-2 recovery boot zip and copied it over my \EFI\VeraCrypt folder. This allowed me to get the extra menu when you press [f2] after you type your password.
I press C, and then press T, then I press U to update the TPM password then it goes on to
[0x137] PCRs mask: but no matter what I enter at this point it just errors out. Says,
TPM not configured
Device Error(12),line 1211
If I just Print PCR's it will spew some text, serial.. but whenever I try to follow the basic instructions it just fails. Does anyone have any advice?
I've cleared TPM in Windows, disabled auto-provisioning. Then when I go to provision it, it just says ready... It no longer allows me to create the password so I check registry for the key an note it down. This is the key that I'm entering in to the pre-boot configuration. It looks configured according to Windows and BIOS, its not being detected by VeraCrypt.
The TPM 1.2 is configured with latest build of Windows 10 64-bit. Its the latest version they make for my Dell laptop.
it uses the same TPM pwd with Windows to share TPM. Create TPM pwd manually in Windows See https://sourceforge.net/projects/dc5/files/beta/dcs_tpm_owner_02.pdf/download
Unfortunately this pdf is no longer accurate. I use Windows 10 1809 and Windows has since several versions ago removed the ability to set a pin. Instead it generates a password for you that can be extracted from the registry. http://ccmexec.com/2016/11/mbam-tpm-password-hash-and-windows-10-1607/
Only problem is this doesn't work for Veracrypt. I only get CRC Error, line 382
If anyone has good instructions for getting TPM to work on later versions of Windows 10 I would gladly donate a reasonable amount. I have Dell, Asus, and Lenovo laptops. I can clear TPM no problem, but after the restart when I click "Prepare TPM" it just sets itself back up and tells me its ready. I can take that password and try setting it up with the F2 option and gives me the above error.
Last edit: Joe 2018-12-15
Does latest version 1.23-hotfix 2 work with TPM? Maybe I should downgrade to the version that comes with DCS-2017_03_28?
Last edit: Joe 2018-12-15